Una señal es cualquier evento operacional detectado en las últimas 24h–30d: CVEs en KEV explotados activamente, advisories de vendor, exposición cloud, ransomware y avisos regulatorios. Cada señal se prioriza por severidad, freshness y match con tu Digital Twin.
Para análisis editorial y noticias generales visita Noticias.
Consola en vivo · last 7d
Señales (ventana)125
Última detecciónhace 14 h
Monitorizado porintelligence scouter
Acción Requerida
Sin señales activamente explotadas ni parches de emergencia.
Discover muestra 8 señales operativas recientes. Sube a Consultant Pro o Professional Pro para abrir el feed completo, histórico ampliado y el catálogo KEV.
Group-IB researchers discovered WindRelay, a new Android malware built to capture live payment card data over NFC (Near Field Communication) and relay it to attackers in real time. WindRelay is paired with the SpyNote remote access trojan, which gives attackers remote access to a victim’s device. Attack chain overview (Source: Group-IB) How the scam unfolds The scam starts with a phone call, in which the fraudster claims to be from the victim’s bank and says … More → The post New Android malware relays bank cards to fraudsters while victims still hold them appeared first on Help Net Security. CVEs: CVE-2026-20349, CVE-2026-68820. Vendors: Microsoft, Cisco, Google, Salesforce, ServiceNow. DORA relevance: high.
Filtered for operational relevance. Powered by a curated catalog of vulnerability, CERT, vendor and threat-intelligence sources.View methodology →
Cash remains most widely accepted payment method in euro area Skip to: Skip to navigation Skip to content Skip to footer EN Български Čeština Dansk Deutsch Eλληνικά English Español Eesti keel Suomi Français Gaeilge Hrvatski Magyar Italiano Lietuvių Latviešu Malti Nederlands Polski Português Română Slovenčina Slovenščina Svenska Menu Monetary policy & markets Monetary policy & markets Our monetary policy strategy, the tools we use and the impact they have Overview of monetary policy and markets Quick links What is monetary policy? Strategy review Asset purchase programmes Latest monetary policy press conference 23 July 2026 Introduction Benefits of price stability Scope of monetary policy Transmission mechanism Decisions, statements & accounts Monetary policy strategy Strategy review Medium-term orientation Two per cent inflation target Economic, monetary and financial analysis Economic analysis Monetary and financial analysis Monetary policy operations Open market operations TLTROs Asset purchase programmes Securities lending Pandemic emergency purchase programme Standing facilities Minimum reserves Two-tier system Euro central bank liquidity lines Swap lines EUREP Chronology of Eurosystem liquidity lines Emergency liquidity assistance (ELA) Liquidity analysis Collateral Eligibility criteria and assessment Marketable assets Non-marketable assets List of eligible marketable assets User guide Collateral management Eligible SSSs Eligible links Eligible triparty agents Risk mitigation ECAF Risk control Haircut categories Valuation Loan-level requirements Contacts Structure of the euro area economy Economic policy Fiscal policies External trade Effective exchange rates Financial structure Financial markets Financial intermediaries Economic diversity Labour market Market contact groups Bond market (BMCG) Money market (MMCG) Debt Issuance Market Contact Group (DIMCG) ECB Operations managers group (ECB OMG) Foreign exchange (FXCG) Institutional Investor Dialogue (IID) Monet DORA relevance: high.
Por qué importa
CVE crítica/alta con vector técnico relevante.
Acción recomendada
DORA: actualiza el registro de riesgos TIC y las notas de materialidad de incidentes si se confirma exposición.
De multiples vulnérabilités ont été découvertes dans Microsoft .Net. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et un déni de service à distance. CVEs: CVE-2026-58641, CVE-2026-62871, CVE-2026-62872, CVE-2026-62886, CVE-2026-62897. Vendors: Microsoft. DORA relevance: medium.
Por qué importa
CVE de alto impacto sobre Microsoft. Planificar ventana de parche.
Acción recomendada
Comprueba la exposición a CVE-2026-58641, CVE-2026-62871, CVE-2026-62872 en el inventario de activos y las herramientas de vulnerabilidades.
Vendors:MicrosoftCISO · Vulnerability Management · IT Ops
De multiples vulnérabilités ont été découvertes dans Microsoft Windows. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et un déni de service à distance. Microsoft indique que la vulnérabilité CVE-2026-68820... CVEs: CVE-2026-68820, CVE-2026-42976, CVE-2026-49179, CVE-2026-50472, CVE-2026-54113. Vendors: Microsoft. DORA relevance: medium.
Por qué importa
CVE de alto impacto sobre Microsoft. Planificar ventana de parche.
Acción recomendada
Comprueba la exposición a CVE-2026-68820, CVE-2026-42976, CVE-2026-49179 en el inventario de activos y las herramientas de vulnerabilidades.
Vendors:MicrosoftCISO · Vulnerability Management · IT Ops
De multiples vulnérabilités ont été découvertes dans Microsoft Office. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et une atteinte à la confidentialité des données. CVEs: CVE-2026-58651, CVE-2026-62842, CVE-2026-62882, CVE-2026-63513, CVE-2026-63515. Vendors: Microsoft. DORA relevance: medium.
Por qué importa
CVE de alto impacto sobre Microsoft. Planificar ventana de parche.
Acción recomendada
Comprueba la exposición a CVE-2026-58651, CVE-2026-62842, CVE-2026-62882 en el inventario de activos y las herramientas de vulnerabilidades.
Vendors:MicrosoftCISO · Vulnerability Management · IT Ops
De multiples vulnérabilités ont été découvertes dans Microsoft Edge. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance et un problème de sécurité non spécifié par l'éditeur. CVEs: CVE-2026-19137, CVE-2026-19138, CVE-2026-19139, CVE-2026-19140, CVE-2026-19142. Vendors: Microsoft. DORA relevance: medium.
Por qué importa
CVE de alto impacto sobre Microsoft. Planificar ventana de parche.
Acción recomendada
Comprueba la exposición a CVE-2026-19137, CVE-2026-19138, CVE-2026-19139 en el inventario de activos y las herramientas de vulnerabilidades.
Vendors:MicrosoftCISO · Vulnerability Management · IT Ops
De multiples vulnérabilités ont été découvertes dans OpenSSH. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur. DORA relevance: medium.
Por qué importa
CVE crítica/alta con vector técnico relevante.
Acción recomendada
Revisa la fuente, confirma aplicabilidad y monitoriza guías posteriores.
Ukrainian police have disrupted 94 fraudulent call centers during a nationwide operation that involved more than 400 searches and the seizure of thousands of computers, phones, and SIM cards. Ukrainian police raid at a fraudulent call center (Source: Cyberpolice Ukraine) The call centers were linked to schemes involving callers impersonating bank employees, fraudulent investment services, cryptocurrency platforms, and attempts to gain remote access to victims’ devices. Some groups collected personal information about prospective victims and … More → The post Ukrainian police raid 94 fraudulent call centers, seize $2 million appeared first on Help Net Security. CVEs: CVE-2026-20349, CVE-2026-68820. Vendors: Microsoft, Cisco, Salesforce, ServiceNow. DORA relevance: high.
Por qué importa
CVE de alto impacto sobre Microsoft / Cisco. Planificar ventana de parche.
Acción recomendada
Comprueba la exposición a CVE-2026-20349, CVE-2026-68820 en el inventario de activos y las herramientas de vulnerabilidades.
Vendors:MicrosoftCiscoSalesforceServiceNowCISO · Vulnerability Management · IT Ops